Not sure if any of y'all listen to the Axis of Easy pod or get the news letter but there were some good one's in the last one
Anthropic Splits Its Most Capable Model in Two — One for the Public, One for Cyber Defenders
Anthropic launched Claude Fable 5 on June 9 as two products: Fable 5 for the public and Mythos 5 — identical but with cyber safeguards lifted — restricted to vetted defenders via Project Glasswing. Both cost $10/$50 per million input/output tokens, free on Pro, Max, Team, and Enterprise plans through June 22, then shifting to usage credits.
Flagged requests are silently rerouted to the weaker Opus 4.8. Glasswing partners found vulnerabilities at record rates — Cloudflare logged 2,000 bugs, Mozilla ten times more than before — yet critical patches still average two weeks. All traffic carries mandatory 30-day retention.

The Hacker News
Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards
Anthropic split Fable 5 and Mythos 5 by cyber safeguards, giving vetted defenders stronger capabilities while limiting public misuse.
Disgruntled Ex-Microsoft Researcher Drops Seventh Zero-Day, Targets Defender
Security researcher Nightmare Eclipse disclosed RoguePlanet, a seventh zero-day targeting Microsoft Defender on fully patched Windows 10 and 11, hours after Microsoft's record-breaking June Patch Tuesday. The flaw exploits a race condition for SYSTEM-level privilege escalation; public PoC code was validated by Tharros Labs analyst Will Dormann and ThreatLocker.
Three of six prior zero-days — RedSun, UnDefend, and BlueHammer — were exploited before patches arrived; all six are now fixed. Microsoft's initial response sparked infosec backlash after being interpreted as a legal threat. Nightmare Eclipse retracted a promised large-scale July 14 disclosure, citing exhaustion.

theregister
Angry bug hunter with Microsoft beef drops new Windows 0-day
Revenge is a dish best served code
Meta Bug Exposes 20,000+ Instagram Accounts
Meta disclosed a breach affecting 20,225 Instagram accounts after attackers exploited a verification bug in its AI-powered High Touch Support (HTS) tool, discovered May 31. HTS helps locked-out users reset passwords, but a code path bug sent reset links to unassociated email addresses, allowing attackers to access accounts lacking two-factor authentication (2FA).
Exposed data included contact details, dates of birth, posts, direct messages, and linked services. Meta disabled HTS, invalidated all reset links, and enrolled affected accounts in mandatory security checkpoints. The company will fix the authentication flaw before relaunching HTS and is reviewing all account recovery flows across its platforms.

Infosecurity Magazine
AI Coding Adoption Hits 97% but Governance Lags Behind
Most dev teams use AI coding assistants but only 30% have full governance in place
Vidar Malware Spreads Via Fake Tutorial Videos on TikTok and Instagram
Threat actors are distributing Vidar — a $300 malware-as-a-service tool that harvests credentials, financial data, and authentication tokens — through fake software tutorial videos on TikTok and Instagram Reels. ReversingLabs identified two campaigns gaming platform algorithms for maximum reach.
The first used Windows-impersonating accounts with AI-voiced clips directing viewers to run PowerShell commands that silently downloaded Vidar from lookalike domain msget[.]run. The second baited comment replies on free Spotify Premium clips to deliver malicious download links via DM. Instagram rejected abuse reports. Organizations are advised to audit install privileges and expand phishing training to include social media.

Infosecurity Magazine
Fake Software Tutorials on TikTok Spread Vidar Stealer
Threat actors push fake free-software tutorials on TikTok and Instagram to spread Vidar stealer
Red Hat npm Packages Backdoored in GitHub Account Compromise
On June 1, 2026, Microsoft, Wiz Research, Snyk, and Aikido uncovered a supply chain attack on Red Hat's @redhat-cloud-services npm namespace. Attackers accessed a legitimate Red Hat employee's GitHub account, injecting malicious code into RedHatInsights repositories via unauthorized commits that exploited GitHub Actions OIDC tokens to publish backdoored packages with valid SLSA attestations.
At least 32 packages and 96 versions — downloaded 80,000–117,000 times weekly — were compromised. The malware, Miasma, steals AWS, Azure, Google Cloud, SSH, and AI credentials including Claude and Gemini API keys, then self-propagates to additional packages. Administrators revoked malicious versions within hours.
https://hackread.com/miasma-malware-red-hat-packages-github-account/
Elsewhere Online:
Mandiant Links Silent Ransom Group to High Value Data Extortion Campaign
Read:

Dark Reading
Silent Ransom Group Hits US Law Firms in Escalating Attacks
The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.
Red Flags Raised Over Alleged 10M Discord Data Breach Notice in Maine
Read:
https://hackread.com/maine-govt-portal-discord-data-breach-notice/
Urgent Hotfix Issued After Attackers Exploit Zero Day Vulnerability in Check Point VPN
Read:

Infosecurity Magazine
Check Point Warns Critical Auth Bypass Bug Exploited in the Wild
Check Point says a critical vulnerability in its Remote Access VPN and Mobile Access solutions has been exploited by Qilin
Attackers Target SolarWinds Serv-U Servers to Cause Denial of Service
Read:

SecurityWeek
SolarWinds Serv-U Vulnerability Exploited in the Wild
SolarWinds has patched CVE-2026-28318, a denial-of-service vulnerability in Serv-U that has been exploited in the wild.
Investigation Reveals SDSU Wired Student Housing with Massive AI Surveillance Network
Read:

Reclaim The Net: Free Speech, Privacy, Digital Rights
SDSU Adds 1,300 AI Cameras, 330 in Student Dorms
The students found out their dorms held more than 330 cameras from their own newspaper, not the school that installed them.
Previously on #AxisOfEasy
If you missed the previous issues, they can be read online here:
- June 5th, 2026: Instagram’s AI Chatbot Exploited To Hijack High-Profile Accounts
- May 29th, 2026: Canada’s Bill C-22 Draws Global Tech Backlash Over Surveillance Demands
- May 22nd, 2026: Ontario Police Secretly Used Israeli Spyware, Watchdog Finds
- May 15th, 2026: Foxconn Hit by Nitrogen Ransomware, 8 TB of Client Data Stolen
- May 8th, 2026: Canada’s Parliament Is Filing Your Posts About Politicians